Azure Web and Mobile built-in role

Azure Spring Cloud Service Registry Contributor

Reads, writes, and deletes user-application registration information in the managed Spring Cloud Service Registry through DataActions only. It does not manage the Azure Spring Apps resource through the control plane. Azure Spring Apps retires on March 31, 2028.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: f5880b48-c26d-48be-b172-7927bfa1c8f1

Control-plane actions (0)

None — this role grants no control-plane management actions.

Data-plane actions (3)

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Assign on the existing Azure Spring Apps service instance containing the managed Service Registry. A parent-scope assignment is inherited by registries in additional instances, while service-instance scope bounds registration changes to one retiring deployment.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign the Service Registry Contributor directly on the existing Azure Spring Apps service instance to the external application or migration identity that must write registrations. Use Reader for observation, document the migration deadline, and remove the assignment after service discovery moves to the replacement platform.

Related roles (1)

Editorial sources (7)

Official Microsoft Learn documentation →